VYPR
Medium severity5.5NVD Advisory· Published Jan 10, 2024· Updated Jun 17, 2026

CVE-2023-50120

CVE-2023-50120

Description

MP4Box GPAC version 2.3-DEV-rev636-gfbd7e13aa-master was discovered to contain an infinite loop in the function av1_uvlc at media_tools/av_parsers.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Gpac/Gpac2 versions
    cpe:2.3:a:gpac:gpac:2.3:dev:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:gpac:gpac:2.3:dev:*:*:*:*:*:*
    • (no CPE)range: 2.3-DEV-rev636-gfbd7e13aa-master
  • GPAC/MP4Box GPACdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.